Shared TypeScript Config for Appium
82%
Total Score
healthy
Healthy overall, with active organization backing and provenance outweighing workflow pinning and template-injection hygiene concerns.
The repository name does not match the package and its README does not mention it, which creates some package-to-repository ambiguity. The organization ownership and monorepo structure provide partial context but do not remove that transparency gap.
The project uses established build tooling, but no security scanning tools were detected. The active repository and separate security policy partly offset this hygiene gap.
All 16 workflows were analyzed with no untrusted checkout or script-injection findings, but all 33 action references are unpinned and high-confidence template-injection findings affect release and version workflows. Low-confidence cache-poisoning and low-severity ad hoc package findings add minor hygiene concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
typescript Version 6.0.3 | — | — |
@tsconfig/node20 Version 20.1.10 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.